competition-browser-persistence

Fail

Audited by Snyk on Jul 17, 2026

Risk Level: HIGH
Full Analysis

HIGH W007: Insecure credential handling detected in skill instructions.

  • Insecure credential handling detected (high risk: 0.80). This skill explicitly instructs the agent to inspect and "keep auth tokens, refresh material, CSRF state" and to "keep extracted storage" and cookie attributes as evidence, which implies capturing and outputting secret values verbatim (high exfiltration risk).

Issues (1)

W007
HIGH

Insecure credential handling detected in skill instructions.

Audit Metadata
Risk Level
HIGH
Analyzed
Jul 17, 2026, 09:27 AM
Issues
1
Security Audit — snyk — competition-browser-persistence